Using the BMC Defender Server interface


  • BMC Defender Server employs a tabbed navigation system, where certain tabs are nested within other tabs. You can traverse the navigation tabs to reach the appropriate screen of the system.
  • The Search screen allows you to view recent (and also historical) message data. The messages are displayed in reverse chronological order, so the most recent event is displayed at the top of the screen.
  • The Analyze link, that appears on the top of raw message screens, furnishes a very easy way to start making sense of the depicted data, showing devices, users, and other items associated with the raw message listing.
  • The Correlation tab provides access to special correlation features of the BMC Defender Server; in particular user defined Correlation Threads. These comprise a major part of the BMC Defender Server, and are fairly easy to use
  • The alerts component monitors catalog counters, and can send a message back to BMC Defender Server stream for further correlation, and can open tickets when incidents occur.
  • The tickets component provides the highest level of correlation on the system, and creates actionable tickets based upon alerts. Each ticket is associated with a particular alert.
  • The tickets component permits you to open and close tickets. tickets can run actions, such as sending e-mail.
  • The BMC Defender Server E-Mail interface, accessed via the System tab, allows the administrator to configure the SMTP parameters used by e-mail notifications and other sections of the system.
  • The operator should monitor the system load, and reduce the amount of information being correlated. In particular, firewalls and other chatty managed devices can have their messages redirected to an auxiliary file to reduce the correlation load, using the Filters section of the program.
  • BMC Defender Server includes an advisory interface that performs hourly checks of system health, and that create an Advisory link at the top of the display when a problem exists. You can acknowledge and disable specific advisories in their profile.

This section provides information about the following topics: 


 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*